Pump Controller Secure Remote Access via Server Validation

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Existing pump controller systems require a database of known serial numbers for secure remote access, increasing manufacturing costs and complexity.

Innovation Solution

A two-part secure activation scheme that validates pump controller identity information against predetermined criteria, generating authentication credentials for a secure communication connection, and displays a unique activation code for user authentication, eliminating the need for prior knowledge of identity information.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Reliability

If a database of known pump controller serial numbers is used for secure remote access, then security against unauthorized access is improved, but manufacturing cost and device complexity increase

Engineering Contradiction:
ImprovesecurityVSAvoidmanufacturing complexity
Core Design Contradiction:
ReliabilityVSDevice complexity

Solution Approach 1:

The patent extracts the security verification function from the pump controller device itself and relocates it to a remote server. Instead of embedding a database of serial numbers in the controller, the controller only needs to communicate its serial number to the server, which then verifies it against the centralized database. This removes the complex database storage and management requirements from the device, reducing manufacturing complexity while maintaining security.

Inventive Principle:
Principle #2Taking out (Extraction)

Solution Approach 2:

The patent introduces a server as an intermediary between the pump controller and the authorization system. The server acts as a mediator that holds the database of known serial numbers and performs the verification process remotely. This intermediary approach allows the controller to maintain a simple design while still benefiting from secure verification through the server's centralized database.

Inventive Principle:
Principle #24Intermediary (Mediator)

2Reliability

If a database of known pump controller serial numbers is used for secure remote access, then security against unauthorized access is improved, but manufacturing cost increases

Engineering Contradiction:
ImprovesecurityVSAvoidmanufacturing cost
Core Design Contradiction:
ReliabilityVSEase of manufacture

Solution Approach 1:

The patent extracts the expensive database storage requirement from the individual pump controller units and consolidates it in a remote server. This means each controller can be manufactured without expensive memory components for storing authorization data, significantly reducing per-unit manufacturing costs. The centralized server bears the database storage cost, which is more efficient from a manufacturing perspective.

Inventive Principle:
Principle #2Taking out (Extraction)

3Adaptability or versatility

If remote access to pump controller is enabled, then remote monitoring and control capability is improved, but vulnerability to unauthorized access increases

Engineering Contradiction:
Improveremote access capabilityVSAvoidunauthorized access risk
Core Design Contradiction:
Adaptability or versatilityVSObject-affected harmful factors

Solution Approach 1:

The patent implements preliminary verification of the pump controller's serial number against the database of known serial numbers before granting remote access authorization. This preliminary action ensures that only authorized controllers can establish remote connections, preventing unauthorized access while enabling legitimate remote monitoring and control operations.

Inventive Principle:
Principle #10Preliminary action

Data Source

PatentUS10356085B2Remote pump monitoring and control
Publication Date: 2019.07.16 GRACO MINNESTOA INC
  • US10356085B2 patent drawing
  • US10356085B2 patent drawing
  • US10356085B2 patent drawing

AI summary

A system includes a pump controller, a user device, and a server. The pump controller transmits identity information via a first communication connection with the pump controller. The server validates the identity information in response to determining that characteristics of the identity information satisfy one or more predetermined validity criteria that are different than the identity information. The pump controller establishes a second communication connection with the server using authentication credentials generated by the server and transmitted to the pump controller in response to validating the identity information. The server transmits a unique activation code to the pump controller via the second connection. The pump controller displays the activation code. A user device associated with a user account transmits the activation code to the server. The server authorizes remote communications with the pump controller via the user account in response to determining that the activation request includes the activation code.